CVE-2021-26855 – Microsoft Exchange Server Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-26855
Microsoft Exchange Server Remote Code Execution Vulnerability Una Vulnerabilidad de Ejecución de código remota de Microsoft Exchange Server. Este ID de CVE es diferente de CVE-2021-26412, CVE-2021-26854, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065, CVE-2021-27078 Microsoft Exchange Server contains an unspecified vulnerability that allows for remote code execution. This vulnerability is part of the ProxyLogon exploit chain. • https://www.exploit-db.com/exploits/49663 https://www.exploit-db.com/exploits/49637 https://www.exploit-db.com/exploits/49879 https://www.exploit-db.com/exploits/49895 https://github.com/h4x0r-dz/CVE-2021-26855 https://github.com/hackerxj007/CVE-2021-26855 https://github.com/hackerschoice/CVE-2021-26855 https://github.com/ZephrFish/Exch-CVE-2021-26855 https://github.com/srvaccount/CVE-2021-26855-PoC https://github.com/pussycat0x/CVE-2021-26855-SSRF https://github • CWE-918: Server-Side Request Forgery (SSRF) •
CVE-2021-26857 – Microsoft Exchange Server Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-26857
Microsoft Exchange Server Remote Code Execution Vulnerability Una Vulnerabilidad de Ejecución de código remota de Microsoft Exchange Server. Este ID de CVE es diferente de CVE-2021-26412, CVE-2021-26854, CVE-2021-26855, CVE-2021-26858, CVE-2021-27065, CVE-2021-27078 Microsoft Exchange Server contains an unspecified vulnerability that allows for remote code execution. This vulnerability is part of the ProxyLogon exploit chain. • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26857 • CWE-502: Deserialization of Untrusted Data •
CVE-2021-26854 – Microsoft Exchange Server Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-26854
Microsoft Exchange Server Remote Code Execution Vulnerability Una Vulnerabilidad de Ejecución de código remota de Microsoft Exchange Server. Este ID de CVE es diferente de CVE-2021-26412, CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065, CVE-2021-27078 • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26854 •
CVE-2021-26412 – Microsoft Exchange Server Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-26412
Microsoft Exchange Server Remote Code Execution Vulnerability Una Vulnerabilidad de Ejecución de código remota de Microsoft Exchange Server. Este ID de CVE es diferente de CVE-2021-26854, CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065, CVE-2021-27078 • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26412 •
CVE-2021-1730 – Microsoft Exchange Server Spoofing Vulnerability
https://notcve.org/view.php?id=CVE-2021-1730
<p>A spoofing vulnerability exists in Microsoft Exchange Server which could result in an attack that would allow a malicious actor to impersonate the user.</p> <p>This update addresses this vulnerability.</p> <p>To prevent these types of attacks, Microsoft recommends customers to download inline images from different DNSdomains than the rest of OWA. Please see further instructions in the FAQ to put in place this mitigations.</p> Una Vulnerabilidad de Suplantación de Identidad de Microsoft Exchange Server. • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-1730 •